red-hat
Pass
Audited by Gen Agent Trust Hub on Sep 29, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the
@membranehq/clipackage from the public NPM registry. This CLI is the primary interface for the vendor's platform and is used to manage integrations. - [COMMAND_EXECUTION]: The skill requires the execution of shell commands such as
membrane login,membrane connection ensure, andmembrane action runto interact with the environment and external services. - [INDIRECT_PROMPT_INJECTION]:
- Ingestion points: The skill processes data from various Red Hat modules including Ansible Navigator, Automation Execution, Insights, and Cost Management via API responses.
- Boundary markers: No specific delimiters or safety instructions are defined to separate external data from the agent's internal logic.
- Capability inventory: The skill has the ability to execute shell commands and perform network requests via the
membraneCLI. - Sanitization: The instructions do not specify any validation or sanitization routines for the data ingested from the Red Hat API.
Audit Metadata